The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
CVE-2026-76461:Critical Cisco Secure Email Gateway Vulnerability Exploited in the Wild
CVE-2026-85706:Critical GitLab Path Traversal Exploited in the Wild
CVE-2026-83548:Critical SonicWall SMA1000 Vulnerabilities CVE-2026-83548, CVE-2026-83549 Exploited in the Wild
CVE-2026-81578:PaperCut NG/MF Critical Zero-Day Exploited in the Wild
CVE-2026-63520:Rapid7 Analysis: Microsoft SharePoint Remote Code Execution (CVE-2026-63520)
CVE-2026-19490:Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gateway
TitleEitWModules
CVE-2026-90072: Linux: In the Linux kernel, the following vulnerability has been resolved: net/sched: sfq: clamp quantum to avoid signed…N/AN/AN/ASep 17, 2026
CVE-2026-90071: Linux: In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_teql: restore skb->dev on the slave…N/AN/AN/ASep 17, 2026
CVE-2026-90070: Linux: In the Linux kernel, the following vulnerability has been resolved: tpm: st33zp24: Return zero on status read failure…N/AN/AN/ASep 17, 2026
CVE-2026-90069: Linux: In the Linux kernel, the following vulnerability has been resolved: crypto: acomp - allocate async request context when…N/AN/AN/ASep 17, 2026
CVE-2026-90068: Linux: In the Linux kernel, the following vulnerability has been resolved: ASoC: dapm: Fix off-by-one check on the second enum…N/AN/AN/ASep 17, 2026
CVE-2026-90067: Linux: In the Linux kernel, the following vulnerability has been resolved: libceph: validate banner payload length When…N/AN/AN/ASep 17, 2026
CVE-2026-90066: Linux: In the Linux kernel, the following vulnerability has been resolved: samples/ftrace: Fix kthread_stop() on ERR_PTR in…N/AN/AN/ASep 17, 2026
CVE-2026-90065: Linux: In the Linux kernel, the following vulnerability has been resolved: net/smc: release the internal TCP sock on…N/AN/AN/ASep 17, 2026
CVE-2026-90064: Linux: In the Linux kernel, the following vulnerability has been resolved: drm/xe: Reject page faults from non-fault-mode…N/AN/AN/ASep 17, 2026
CVE-2026-90063: Linux: In the Linux kernel, the following vulnerability has been resolved: virtio-net: Ensure that TCP packets don't overflow…N/AN/AN/ASep 17, 2026
CVE-2026-90062: Linux: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: move hardware offload step…N/AN/AN/ASep 17, 2026
CVE-2026-90061: Linux: In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: skip double clone set…N/AN/AN/ASep 17, 2026
CVE-2026-90060: Linux: In the Linux kernel, the following vulnerability has been resolved: ALSA: control: Don't add invalid kcontrols to LED…N/AN/AN/ASep 17, 2026
CVE-2026-90059: Linux: In the Linux kernel, the following vulnerability has been resolved: net: stmmac: restore NET_IP_ALIGN in the RX DMA…N/AN/AN/ASep 17, 2026
CVE-2026-90058: Linux: In the Linux kernel, the following vulnerability has been resolved: net/sched: bound qdisc_pkt_len to prevent qdisc…N/AN/AN/ASep 17, 2026
CVE-2026-90057: Linux: In the Linux kernel, the following vulnerability has been resolved: slip: remove slip_hangup() to fix use-after-free in…N/AN/AN/ASep 17, 2026
CVE-2026-90056: Linux: In the Linux kernel, the following vulnerability has been resolved: net: fec: only stop PTP if it was initialized…N/AN/AN/ASep 17, 2026
CVE-2026-90055: Linux: In the Linux kernel, the following vulnerability has been resolved: usb: atm: usbatm: fix invalid ci_range…N/AN/AN/ASep 17, 2026
CVE-2026-90054: Linux: In the Linux kernel, the following vulnerability has been resolved: tcp: fix corruption of urgent data on multi-segment…N/AN/AN/ASep 17, 2026
CVE-2026-90053: Linux: In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_htb: limit htb_classify inner-class…N/AN/AN/ASep 17, 2026
CVE-2026-90052: Linux: In the Linux kernel, the following vulnerability has been resolved: dm-integrity: fix buffer overflow with keyed…N/AN/AN/ASep 17, 2026
CVE-2026-90051: Linux: In the Linux kernel, the following vulnerability has been resolved: tcp: reject non zerocopy devmem tx Devmem tcp tx…N/AN/AN/ASep 17, 2026
CVE-2026-90050: Linux: In the Linux kernel, the following vulnerability has been resolved: net/sched: fq: clamp quantum and initial_quantum in…N/AN/AN/ASep 17, 2026
CVE-2026-8674: The GNU C Library glibc: Initializing the DNS stub resolver from an /etc/resolv.conf file, or a LOCALDOMAIN environment variable, whose search…5.3 MediumN/AN/ASep 17, 2026
CVE-2026-85720: AsyncHttpClient async-http-client: The AsyncHttpClient (AHC) library allows Java applications to easily execute HTTP requests and asynchronously process…5.9 MediumN/AN/ASep 17, 2026
901-925 of 397606